Vulnerability index

Browse CVEs

7,760 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Information ExposureCWE-200 × clear
Android MEDIUM 5.5
CVE-2018-21076

An issue was discovered on Samsung mobile devices with N(7.x) (Exynos8890/8895 chipsets) software. There is information disclosure (a KASLR offset) i…

Mitigation only
Fix from $1,600 2020-04-08
Android MEDIUM 6.2
CVE-2018-21045

An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. There is Clipboard access in the lockscreen state via a copy-and-p…

Mitigation only
Fix from $1,600 2020-04-08
Android MEDIUM 6.2
CVE-2018-21048

An issue was discovered on Samsung mobile devices with O(8.x) software. There is a Notification leak on a locked device in Standalone Dex mode. The S…

Mitigation only
Fix from $1,600 2020-04-08
Android HIGH 7.5
CVE-2018-21059

An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. There is Clipboard content visibility in the locked state via the …

Mitigation only
Fix from $1,950 2020-04-08
Android HIGH 7.5
CVE-2018-21060

An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. There is a Keyboard learned words leak in the locked state via the…

Mitigation only
Fix from $1,950 2020-04-08
Android HIGH 7.5
CVE-2018-21083

An issue was discovered on Samsung mobile devices with M(6.0), N(7.x), and O(8.0) (Exynos or Qualcomm chipsets) software. There is information disclo…

Mitigation only
Fix from $1,950 2020-04-08
Android HIGH 7.5
CVE-2017-18643

An issue was discovered on Samsung mobile devices with M(6.x) and N(7.x) software. There is information disclosure of the kbase_context address of a …

Mitigation only
Fix from $1,950 2020-04-08
Android MEDIUM 5.3
CVE-2017-18686

An issue was discovered on Samsung mobile devices with M(6.0) and N(7.0) software. Contact information can leak to a log file because of the broadcas…

Mitigation only
Fix from $1,600 2020-04-07
Android MEDIUM 5.3
CVE-2017-18687

An issue was discovered on Samsung mobile devices with KK(4.4), L(5.0/5.1), M(6.0), and N(7.0) software. An attacker can obtain the full pathnames of…

Mitigation only
Fix from $1,600 2020-04-07
Android MEDIUM 5.3
CVE-2017-18694

An issue was discovered on Samsung mobile devices with software through 2016-10-25 (Exynos5 chipsets). Attackers can read kernel addresses in the log…

Mitigation only
Fix from $1,600 2020-04-07
Ur Software HIGH 8.8
CVE-2020-10264

CB3 SW Version 3.3 and upwards, e-series SW Version 5.0 and upwards allow authenticated access to the RTDE (Real-Time Data Exchange) interface on por…

Fix: after 3.3.3.292
Fix from $1,950 2020-04-06
Esoms MEDIUM 6.5
CVE-2019-19000

For ABB eSOMS 4.0 to 6.0.3, the Cache-Control and Pragma HTTP header(s) have not been properly configured within the application response. This can p…

Fix: after 6.0.3
Fix from $1,600 2020-04-02
Continuous Delivery HIGH 7.7
CVE-2020-7944

In Continuous Delivery for Puppet Enterprise (CD4PE) before 3.4.0, changes to resources or classes containing Sensitive parameters can result in the …

Fix: 3.4.0+
Fix from $1,950 2020-03-26
Firefox MEDIUM 5.3
CVE-2020-6812

The first time AirPods are connected to an iPhone, they become named after the user's name by default (e.g. Jane Doe's AirPods.) Websites with camera…

Fix: 68.6.0 / 74.0+
Fix from $1,600 2020-03-25
Acrobat Dc HIGH 7.5
CVE-2020-3800

Adobe Acrobat and Reader versions 2020.006.20034 and earlier, 2017.011.30158 and earlier, 2017.011.30158 and earlier, 2015.006.30510 and earlier, and…

Fix: 15.006.30518 / 17.011.30166+
Fix from $1,950 2020-03-25
Pt 7528 24tx Hv Firmware HIGH 7.5
CVE-2020-6993

In Moxa PT-7528 series firmware, Version 4.0 or lower, and PT-7828 series firmware, Version 3.9 or lower, an attacker can gain access to sensitive in…

Fix: after 4.0
Fix from $1,950 2020-03-24
Android MEDIUM 5.3
CVE-2019-20616

An issue was discovered on Samsung mobile devices with N(7.x) and O(8.x) software. Gallery leaks a thumbnail of Private Mode content. The Samsung ID …

Mitigation only
Fix from $1,600 2020-03-24
Content Navigator MEDIUM 5.3
CVE-2020-4309

IBM Content Navigator 3.0CD could disclose sensitive information to an unauthenticated user which could be used to aid in further attacks against the…

Patch available
Fix from $1,600 2020-03-24
Luci MEDIUM 5.3
CVE-2020-10871

In OpenWrt LuCI git-20.x, remote unauthenticated attackers can retrieve the list of installed packages and services. NOTE: the vendor disputes the si…

Patch available
Fix from $1,600 2020-03-23
Asuswrt HIGH 7.5
CVE-2018-20333

An issue was discovered in ASUSWRT 3.0.0.4.384.20308. An unauthenticated user can request /update_applist.asp to see if a USB device is attached to t…

No fix yet
Fix from $1,950 2020-03-20
Dsl 2875al Firmware HIGH 7.5
CVE-2019-15656

D-Link DSL-2875AL and DSL-2877AL devices through 1.00.05 are prone to information disclosure via a simple crafted request to index.asp on the web man…

Fix: after 1.00.05
Fix from $1,950 2020-03-19
Ansible Engine MEDIUM 5.5
CVE-2020-1753

A security flaw was found in Ansible Engine, all Ansible 2.7.x versions prior to 2.7.17, all Ansible 2.8.x versions prior to 2.8.11 and all Ansible 2…

Fix: 2.7.18 / 2.8.11+
Fix from $1,600 2020-03-16
GitLab MEDIUM 5.3
CVE-2020-10090

GitLab 11.7 through 12.8.1 allows Information Disclosure. Under certain group conditions, group epic information was unintentionally being disclosed.

Fix: after 12.8.1
Fix from $1,600 2020-03-13
Popup Builder MEDIUM 6.3
CVE-2020-10195

The popup-builder plugin before 3.64.1 for WordPress allows information disclosure and settings modification, leading to in-scope privilege escalatio…

Fix: 3.64.1+
Fix from $1,600 2020-03-13
Fortiweb MEDIUM 6.5
CVE-2019-16157

An information exposure vulnerability in Fortinet FortiWeb 6.2.0 CLI and earlier may allow an authenticated user to view sensitive information being …

Fix: after 6.2.0
Fix from $1,600 2020-03-13
Mb3170 Firmware MEDIUM 5.3
CVE-2019-9103

An issue was discovered on Moxa MGate MB3170 and MB3270 devices before 4.1, MB3280 and MB3480 devices before 3.1, MB3660 devices before 2.3, and MB31…

Fix: after 4.0
Fix from $1,600 2020-03-11
Android HIGH 7.5
CVE-2020-0062

In Euicc, there is a possible information disclosure due to an included test Certificate. This could lead to remote information disclosure with no ad…

Mitigation only
Fix from $1,950 2020-03-10
Enable Now MEDIUM 5.4
CVE-2020-6178

SAP Enable Now, before version 1911, sends the Session ID cookie value in URL. This might be stolen from the browser history or log files, leading to…

Fix: 1911+
Fix from $1,600 2020-03-10
Android MEDIUM 5.0
CVE-2020-0031

In triggerAugmentedAutofillLocked and related functions of Session.java, it is possible for Augmented Autofill to display sensitive information to th…

Mitigation only
Fix from $1,600 2020-03-10
Jboss Application Server HIGH 7.5
CVE-2012-1094

JBoss AS 7 prior to 7.1.1 and mod_cluster do not handle default hostname in the same way, which can cause the excluded-contexts list to be mismatched…

Fix: 7.1.1+
Fix from $1,950 2020-03-10